GitLab
cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*
- >= 18.9, < 18.10.7
- >= 18.11, < 18.11.4
- >= 19.0, < 19.0.1
A vulnerability exists in GitLab Community Edition and Enterprise Edition, affecting all versions from 18.9 prior to 18.10.7, 18.11 prior to 18.11.4, and 19.0 prior to 19.0.1. Under certain conditions, a blocked Project Access Token could improperly access private resources due to inadequate authorization enforcement.
Exploitation of this vulnerability could lead to unauthorized access to private resources by a blocked Project Access Token.
Users can upgrade to GitLab versions 18.10.7, 18.11.4, or 19.0.1 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.